Oval Definition:oval:org.mitre.oval:def:16863
Revision Date:2013-07-29Version:5
Title:VMware Workstation, Player patches address security issues
Description:VMware Workstation 8.x before 8.0.3, VMware Player 4.x before 4.0.3, VMware Fusion 4.x through 4.1.2, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 do not properly configure the virtual floppy device, which allows guest OS users to cause a denial of service (out-of-bounds write operation and VMX process crash) or possibly execute arbitrary code on the host OS by leveraging administrative privileges on the guest OS.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2012-2449
Platform(s):Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s):VMware Player
VMware Workstation
Definition Synopsis
  • Determine if the version of VMware Workstation is less than 8.0.3 and is greater than or equal to 8.0
  • VMware Workstation is installed
  • AND Determine if the version of VMware Workstation is less than 8.0.3
  • AND Determine if the version of VMware Workstation is greater than or equal to 8.0
  • OR Determine if the version of VMware Player is less than 4.0.3 and is greater than or equal to 4.0
  • VMware Player is installed
  • AND Determine if the version of VMware Player is less than 4.0.3
  • AND Determine if the version of VMware Player is greater than or equal to 4.0
  • BACK